ZeroHour

CVE-2019-18576

CVSS 3.1
6.7 medium
EPSS
<1%p24
Published
()
Modified
Description

Dell EMC XtremIO XMS versions prior to 6.3.0 contain an information disclosure vulnerability where OS users’ passwords are logged in local files. Malicious local users with access to the log files may use the exposed passwords to gain access to XtremIO with the privileges of the compromised user.

Vendors
dell
Products
xtremio management server
Weakness
CWE-532
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.